× The internal search function is temporarily non-functional. The current search engine is no longer viable and we are researching alternatives.
As a stop gap measure, we are using Google's custom search engine service.
If you know of an easy to use, open source, search engine ... please contact support@midrange.com.



Ok, there's probably only a small thimble of people using this but...

If you are using IBM Secure Identity Manager aka ISIM formerly known as
IBM Tivoli Identity Manager aka ITIM
and you change QPWDLVL up (we're at 3) then you might have to change your
passwords for the user account
In ISIM we had a password of mixed case and numbers. Prior to changing
QPWDLVL on IBM i it worked with the stored account. The stored account
probably had that all upper case. I had to do a CHGUSRPRF to the mixed
case password. It was really kind of weird. It said user accounts could
not be created but they were. It was right when it said the deletes
failed.

On a create we would get
CTGIMT205E The request failed due to a system error: Error while adding
user: { "status": "fail", "connectorname": "conIDIOS400User",
"operation": "Automatic Reconnect (connection closed)", "exception":
"javax.naming.AuthenticationException: [LDAP: error code 49 - Invalid
Credentials]", "message": "[LDAP: error code 49 - Invalid Credentials]",
"originalexception": "javax.naming.CommunicationException: connection
closed [Root exception is java.io.IOException: connection closed];
Remaining name:
'os400-profile=mrobledo,cn=Accounts,os400-sys=GDIHQ.DEKKO-1'", "class":
"javax.naming.AuthenticationException" }

On a deletion:
CTGIMT215E The account was not deleted due to a system error: Error: {
"status": "fail", "connectorname": "conIDIOS400User", "operation":
"delete", "exception": "javax.naming.NamingException: [LDAP: error code 1
- DLTUSRPRF CPF0006 Errors occurred in command.]; Remaining name:
'os400-profile=RORTIZ,cn=Accounts,os400-sys=GDIHQ2.DEKKO-1'", "message":
"[LDAP: error code 1 - DLTUSRPRF CPF0006 Errors occurred in command.]",
"class": "javax.naming.NamingException" },CTGIMT215E The account was not
deleted due to a system error: Error: { "status": "fail",
"connectorname": "conIDIOS400User", "operation": "Automatic Reconnect
(connection closed)", "exception": "javax.naming.AuthenticationException:
[LDAP: error code 49 - Invalid Credentials]", "message": "[LDAP: error
code 49 - Invalid Credentials]", "originalexception":
"javax.naming.CommunicationException: connection closed [Root exception is
java.io.IOException: connection closed]; Remaining name:
'cn=Accounts,os400-sys=GDIHQ.DEKKO-1'", "class":
"javax.naming.AuthenticationException" }

BTW, you are aware that you can use LDAP to Create, Read, Update, Delete
(CRUD) your IBM i profiles, right? ISIM uses it to propagate changes to
Windows accounts to IBM i. This is how we keep passwords in sync.

Now, if someone tries to google search that error they will find a hit.
More keywords: IBM i, OS400, AS400, iSeries, system i, WRKSYSVAL,
CHGSYSVAL

Rob Berendt

As an Amazon Associate we earn from qualifying purchases.

This thread ...


Follow On AppleNews
Return to Archive home page | Return to MIDRANGE.COM home page

This mailing list archive is Copyright 1997-2024 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].

Operating expenses for this site are earned using the Amazon Associate program and Google Adsense.